The present invention relates to a method for providing a secure communication between two devices, in particular between devices used in a pay TV system.
In a pay TV system each subscriber generally has a decoder for descrambling the source component signal, wherein said decoder comprises a conditional access module and a smart card for decrypting entitlement control messages and entitlement management messages. In order to prevent unauthorized operation of the decoder for descrambling a source component signal it is important to prevent switching between an authorized and an unauthorized smart card for example.
The invention aims to provide a method of the above-mentioned type wherein the communication between two devices, such as the control access module and the smart card or the decoder and the conditional access module, is arranged in such a manner that switching between authorized and unauthorized devices is not possible.
According to the invention a method is provided, wherein a first device generates a random key (Ci) and transfers said key to a second device in a first message encrypted using a public key, wherein said second device decrypts the first encrypted message by means of a corresponding secret key to obtain said random key (Ci), wherein said random key is used to encrypt and decrypt further transmissions between said devices.
According to the invention this method can be applied in a decoder for a pay TV system, wherein said decoder comprises a conditional access module and a smart card, wherein said method is applied to provide a secure communication between the control access module and the smart card or between the decoder and the conditional access module.
The invention further provides a decoder for a pay TV system, comprising a conditional access module and a smart card, said conditional access module comprising means for generating a random key (Ci), means for encrypting said key in a first encrypted message using a public key encryption method, means for transfering said first encrypted message to the smart card, said smart card comprising means for receiving and decrypting said first encrypted message to obtain said random key, means for encrypting transmissions to the conditional access module under said random key, said conditional access module having means to decrypt said transmissions received from the smart card.
In a further embodiment of the invention, said decoder comprises a conditional access module and a smart card, wherein said decoder comprises means for generating a random key (Ci), means for encrypting said key in a first encrypted message using a public key encryption method, means for transfering said first encrypted message to the conditional access module, said conditional access module comprising means for receiving and decrypting said first encrypted message to obtain said random key, means for encrypting transmissions to the decoder under said random key, said decoder having means to decrypt said transmissions received from the conditional access module.
The invention will be further explained by reference to the drawings in which an embodiment of the method of the invention is explained as applied in a decoder for a pay TV system.
Referring to
The conditional access module 4 is provided with a descrambler unit 7 and a microprocessor 8 having a memory 9. The smart card 5 comprises a microprocessor 10 having a memory 11.
As the operation of the above-mentioned parts of the decoder is not a part of the present invention, this operation will not be described in detail. Typically, the signal received by the demodulator 1 is a modulated data stream between 950 MHz and 2050 MHz. The output of the demodulator 1 is a scrambled digital data stream which is provided to the CAM 4 and the descrambler 7 will be allowed to descramble this scrambled data stream assuming that an authorized smart card has been inserted and the subscriber is entitled to receive the program. The descrambled data stream is demultiplexed by the demultiplexer 2 and decompressed and converted into the original analogue audio and video signal by the decompression unit 3.
In a pay TV system the control word required for descrambling, is transferred to the subscribers in so-called entitlement control messages containing the control word encrypted using a service key. This service key is downloaded in the memory 11 of the smart card 5 by means of a so-called entitlement management message for example. During operation the CAM 4 transfers the entitlement control messages towards the microprocessor 10 of the smart card 5 so that the microprocessor 10 can process the entitlement control message and extract the control word. Thereafter the smart card 5 returns the decrypted control word towards the CAM 4 so that the descrambler 7 is allowed to descramble the digital data stream received from the demodulator 1.
In order to prevent the use of an unauthorized smart card 5 in combination with the CAM 4 it is important to provide a secure communication between the CAM 4 and the smart card 5. According to the present invention the following method is used to provide such a secure communication. The steps of this method are shown in
The method described can be used in the same manner for providing a secure communication between the CAM 4 and the decoder, wherein the same protocol as shown in
In summary it will be understood that if a new CAM 4 is connected to the other decoder parts, the microprocessor 6 of the decoder will generate the two random numbers Ci and A and as soon as the microprocessor 6 has decrypted the second message received from the microprocessor 8 of the CAM 4, and has verified that the random number A is correct, the key Ci will be used in all transmissions between the CAM 4 and the microprocessor 6.
The invention is not restricted to the above-described embodiments which can be varied in a number of ways within the scope of the claims. As an example for a further embodiment the CAM (i.e. the descrambler) may be part of the decoder. The decoder would now challenge the smart card to authenticate itself to obtain a secure communication between the smart card and the decoder.
The present patent application is a continuation of prior application Ser. No. 09/155,782, filed Apr. 2, 1999 now U.S. Pat. No. 6,385,317, entitled METHOD FOR PROVIDING A SECURE COMMUNICATION BETWEEN TWO DEVICES AND APPLICATION OF THIS METHOD
Number | Name | Date | Kind |
---|---|---|---|
4238853 | Ehrsam et al. | Dec 1980 | A |
4531020 | Wechselberger et al. | Jul 1985 | A |
4868877 | Fischer | Sep 1989 | A |
4887296 | Horne | Dec 1989 | A |
5029207 | Gammie | Jul 1991 | A |
5048085 | Abraham et al. | Sep 1991 | A |
5054064 | Walker et al. | Oct 1991 | A |
5111504 | Esserman et al. | May 1992 | A |
5159633 | Nakamura | Oct 1992 | A |
5237610 | Gammie et al. | Aug 1993 | A |
5282249 | Cohen et al. | Jan 1994 | A |
5420866 | Wasilewski | May 1995 | A |
5600378 | Wasilewski | Feb 1997 | A |
5625693 | Rohatgi et al. | Apr 1997 | A |
5742677 | Pinder et al. | Apr 1998 | A |
5870474 | Wasilewski et al. | Feb 1999 | A |
6038320 | Miller | Mar 2000 | A |
6038321 | Torigai et al. | Mar 2000 | A |
Number | Date | Country |
---|---|---|
0428252 | May 1991 | EP |
0689316 | Dec 1995 | EP |
0658054 | Sep 1998 | EP |
WO-9738530 | Oct 1997 | WO |
Number | Date | Country | |
---|---|---|---|
20020126844 A1 | Sep 2002 | US |
Number | Date | Country | |
---|---|---|---|
Parent | 09155782 | Apr 1999 | US |
Child | 10101122 | US |